Open
Cached
·
just now
76/100
SECURITY SCORE
Detected Technologies
Certificate Information
Subject
CN=supportppets.com
Issuer
C=US, O=Let's Encrypt, CN=YR1
Valid From
June 04, 2026
Valid Until
September 02, 2026
83 days
Public Key
RSA
4096 bit
Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
FE:61:6B:60:9A:85:D9:36:17:D1:96:1F:53:A2:DF:B4:28:1A:57:56:A1:9A:8D:63:16:E9:E2:1C:16:6F:1C:65
Alternative Names
Security Configuration
TLS Protocols
TLS 1.2
TLS 1.3
Forward Secrecy
Supported
(Modern clients use PFS)
HTTP Security Headers
Status
Strict-Transport-Security
Missing
Not configured
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
- • Add Strict-Transport-Security header with max-age of at least 1 year
- • Add Content-Security-Policy header to prevent XSS attacks
- • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
- • Add X-Content-Type-Options: nosniff
- • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
- • Consider adding Permissions-Policy to control browser features
CAA Records (Certificate Authority Authorization)
CAA Records
Not Configured
(Any CA can issue certificates)
CAA Issues
- • No CAA records configured - any CA can issue certificates
Recommendations
- • Implement CAA records to restrict which CAs can issue certificates for your domain
- • This adds an extra layer of security against unauthorized certificate issuance
- • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
- • Consider adding 'iodef' record to receive security incident reports
Subject Alternative Names
90 domains
supportppets.com
*.supportppets.com
*.app.supportppets.com
*.bestellen.supportppets.com
*.demo.supportppets.com
*.docs.supportppets.com
*.external.supportppets.com
*.intranet.supportppets.com
*.my.supportppets.com
*.public.supportppets.com
*.rdweb.supportppets.com
*.shop.supportppets.com
*.sitemap.supportppets.com
*.store.supportppets.com
*.test.supportppets.com
*.vpn.supportppets.com
*.webmail.supportppets.com
*.www.supportppets.com
*.7a3b4a74-d193-4616-8049-10ccde927cfd.preowned.autos
*.ad.preowned.autos
*.adblock.preowned.autos
*.adguard.preowned.autos
*.adguard1.preowned.autos
*.admin.preowned.autos
*.agh.preowned.autos
*.api.preowned.autos
*.assets.preowned.autos
*.axqucuwqpyrwtjxdns.preowned.autos
*.demo.preowned.autos
*.dev.preowned.autos
*.dns.preowned.autos
*.dns1.preowned.autos
*.docs.preowned.autos
*.doh.preowned.autos
*.doh1.preowned.autos
*.external.preowned.autos
*.intranet.preowned.autos
*.m.preowned.autos
*.new.preowned.autos
*.portal.preowned.autos
preowned.autos
*.preowned.autos
*.public.preowned.autos
*.resolver.preowned.autos
*.s6a28l.preowned.autos
*.sharepoint.preowned.autos
*.staging.preowned.autos
*.uat.preowned.autos
*.www.preowned.autos
*.ytezhdns.preowned.autos
*.backup.topui.vip
*.dashboard.topui.vip
*.dev.topui.vip
*.mail.topui.vip
*.mailer.topui.vip
*.marketing.topui.vip
*.new.topui.vip
*.staging.topui.vip
topui.vip
*.topui.vip
*.v1.topui.vip
*.vip.topui.vip
*.544c8b28-1686-4b91-a44c-b759015daf4c.whatabrotherneeds.info
*.a.whatabrotherneeds.info
*.admin.whatabrotherneeds.info
*.assets.whatabrotherneeds.info
*.dev.whatabrotherneeds.info
*.login.whatabrotherneeds.info
whatabrotherneeds.info
*.whatabrotherneeds.info
*.m.xn--wlqy42g4gf7vt.com
*.service.xn--wlqy42g4gf7vt.com
*.vqznjmail.xn--wlqy42g4gf7vt.com
*.wildcard.xn--wlqy42g4gf7vt.com
xn--wlqy42g4gf7vt.com
*.xn--wlqy42g4gf7vt.com
*.a.xn--xe5by2a9l.info
*.app.xn--xe5by2a9l.info
*.backup.xn--xe5by2a9l.info
*.dashboard.xn--xe5by2a9l.info
*.jtaxddev.xn--xe5by2a9l.info
*.mail.xn--xe5by2a9l.info
*.mailer.xn--xe5by2a9l.info
*.qa.xn--xe5by2a9l.info
*.secure.xn--xe5by2a9l.info
*.staging.xn--xe5by2a9l.info
*.uat.xn--xe5by2a9l.info
*.web.xn--xe5by2a9l.info
xn--xe5by2a9l.info
*.xn--xe5by2a9l.info
Other domains in certificate